draft-ietf-kitten-rfc2853bis-02 review

Shawn M Emery <Shawn.Emery@Sun.COM> Fri, 02 February 2007 21:14 UTC

Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1HD5jy-0002YG-4T; Fri, 02 Feb 2007 16:14:38 -0500
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1HD5jw-0002Xv-N4 for kitten@ietf.org; Fri, 02 Feb 2007 16:14:36 -0500
Received: from brmea-mail-3.sun.com ([192.18.98.34]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1HD5jt-0007jW-DB for kitten@ietf.org; Fri, 02 Feb 2007 16:14:36 -0500
Received: from fe-amer-01.sun.com ([192.18.108.175]) by brmea-mail-3.sun.com (8.13.6+Sun/8.12.9) with ESMTP id l12LEXKS005876 for <kitten@ietf.org>; Fri, 2 Feb 2007 14:14:33 -0700 (MST)
Received: from conversion-daemon.mail-amer.sun.com by mail-amer.sun.com (Sun Java System Messaging Server 6.2-6.01 (built Apr 3 2006)) id <0JCU00M01TA3UQ00@mail-amer.sun.com> (original mail from Shawn.Emery@Sun.COM) for kitten@ietf.org; Fri, 02 Feb 2007 14:14:32 -0700 (MST)
Received: from [129.150.48.6] by mail-amer.sun.com (Sun Java System Messaging Server 6.2-6.01 (built Apr 3 2006)) with ESMTPSA id <0JCU00678TO8YR53@mail-amer.sun.com> for kitten@ietf.org; Fri, 02 Feb 2007 14:14:32 -0700 (MST)
Date: Fri, 02 Feb 2007 14:12:45 -0700
From: Shawn M Emery <Shawn.Emery@Sun.COM>
To: kitten@ietf.org
Message-id: <45C3A94D.1090707@sun.com>
MIME-version: 1.0
Content-type: text/plain; format="flowed"; charset="ISO-8859-1"
Content-transfer-encoding: 7bit
User-Agent: Thunderbird 1.5.0.9 (X11/20061228)
X-Spam-Score: 0.0 (/)
X-Scan-Signature: a7d6aff76b15f3f56fcb94490e1052e4
Cc:
Subject: draft-ietf-kitten-rfc2853bis-02 review
X-BeenThere: kitten@lists.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: Common Authentication Technologies - Next Generation <kitten.lists.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@lists.ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/kitten>
List-Post: <mailto:kitten@lists.ietf.org>
List-Help: <mailto:kitten-request@lists.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@lists.ietf.org?subject=subscribe>
Errors-To: kitten-bounces@lists.ietf.org

As promised at IETF-68, here is my review of this draft.  I apologize 
for not doing this sooner.

Overall comments:

Does this draft need to obsolete RFC 2853, but rather just contain the
corrections/clarifications based from RFC 2743? I think that most of
the people looking at this document are going to be those you already
have existing class libraries and will want to know what exactly should
be changed.

Are there any issues where garbage collection may be indeterministic
enough for freeing sensitive data?

4. Additional Controls
--
Optional services list needs delimiters of item and its definition.

5.2 Provider Framework
--
Add comma here:

functionality to the components obtained from providers, the GSS-API
can be extended to support an arbitrary list of mechanisms.


5.14 Channel Bindings
--

The channel binding mechanism example is out-dated. Refer to:
draft-ietf-kitten-gssapi-channel-bindings-02.txt

6.3 GSSCredential interface
--

Should we consider draft-ietf-kitten-gssapi-store-cred-02.txt here/now?

Thanks,

Shawn.
--

_______________________________________________
Kitten mailing list
Kitten@lists.ietf.org
https://www1.ietf.org/mailman/listinfo/kitten